<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic All RADIUS, web login and ssh traffic pass through service-port. in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757735#M139850</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The RADIUS is in 10.4.10.0 network. i am trying to access it from any VLAN (I mean 10.4.98.5). All Vlans are routable.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 19 Oct 2011 14:57:42 GMT</pubDate>
    <dc:creator>PlamenDanov</dc:creator>
    <dc:date>2011-10-19T14:57:42Z</dc:date>
    <item>
      <title>All RADIUS, web login and ssh traffic pass through service-port. Any ideas why.</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757731#M139846</link>
      <description>&lt;P&gt;Hi everybody, &lt;/P&gt;&lt;P&gt;i am expecting an issue with my WLC 5508 with IOS 7.0.116.0. The traffic related with controler managment&amp;nbsp; ( GUI and telnet access and RADIUS) is passing trough service-port.&lt;/P&gt;&lt;P&gt;The managment inteface is connected to catalist 6513 with folowing configuration and the catalists intarface has this config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV id="imcontent" style="margin-left: 12px;"&gt;&lt;DIV style="font-family: MS Shell Dlg 2; direction: ltr; color: #000000; font-size: 9pt;"&gt;interface&amp;nbsp; GigabitEthernet10/4&lt;BR /&gt; description Cisco WiFi SFP port&amp;nbsp; TRNUK&lt;BR /&gt; switchport&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport&amp;nbsp; trunk allowed vlan 9,28,30,38,98&lt;BR /&gt; switchport mode trunk&lt;BR /&gt; no ip&amp;nbsp; address&lt;BR /&gt; speed 1000&lt;BR /&gt; duplex full&lt;BR /&gt; spanning-tree&amp;nbsp; portfast&lt;BR /&gt;end&lt;/DIV&gt;&lt;/DIV&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the mangment VLAN is 98 and the managment interface is in it. The service port is in different VLAN in this case 199 with static IP. The both cables are connected to same Switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas why i can access this controler only via service port and all RADIUS and SNMP trafic pass trough it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 03:57:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757731#M139846</guid>
      <dc:creator>PlamenDanov</dc:creator>
      <dc:date>2021-07-04T03:57:15Z</dc:date>
    </item>
    <item>
      <title>All RADIUS, web login and ssh traffic pass through service-port.</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757732#M139847</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you give the following inputs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Show interface detailed management&lt;/P&gt;&lt;P&gt;show interface detailed service-port&lt;/P&gt;&lt;P&gt;show route summary&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;NikhiL&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Oct 2011 13:17:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757732#M139847</guid>
      <dc:creator>nikhilcherian</dc:creator>
      <dc:date>2011-10-19T13:17:58Z</dc:date>
    </item>
    <item>
      <title>All RADIUS, web login and ssh traffic pass through service-port.</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757733#M139848</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2011.10.19 16:50:24 =~=~=~=~=~=~=~=~=~=~=~=&lt;/P&gt;&lt;P&gt;(Cisco Controller) &amp;gt;show interface detailed management &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface Name................................... management&lt;/P&gt;&lt;P&gt;MAC Address...................................... 88:43:e1:61:db:c0&lt;/P&gt;&lt;P&gt;IP Address....................................... 10.4.98.5&lt;/P&gt;&lt;P&gt;IP Netmask....................................... 255.255.255.0&lt;/P&gt;&lt;P&gt;IP Gateway....................................... 10.4.98.254&lt;/P&gt;&lt;P&gt;External NAT IP State............................ Disabled&lt;/P&gt;&lt;P&gt;External NAT IP Address.......................... 0.0.0.0&lt;/P&gt;&lt;P&gt;VLAN............................................. 98&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;Quarantine-vlan.................................. 0&lt;/P&gt;&lt;P&gt;Active Physical Port............................. 1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;Primary Physical Port............................ 1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;Backup Physical Port............................. Unconfigured&lt;/P&gt;&lt;P&gt;Primary DHCP Server.............................. 10.4.10.40&lt;/P&gt;&lt;P&gt;Secondary DHCP Server............................ Unconfigured&lt;/P&gt;&lt;P&gt;DHCP Option 82................................... Disabled&lt;/P&gt;&lt;P&gt;ACL.............................................. Unconfigured&lt;/P&gt;&lt;P&gt;AP Manager....................................... Yes&lt;/P&gt;&lt;P&gt;Guest Interface.................................. No&lt;/P&gt;&lt;P&gt;L2 Multicast..................................... Enabled&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Cisco Controller) &amp;gt;show interface detailed service-port &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface Name................................... service-port&lt;/P&gt;&lt;P&gt;MAC Address...................................... 88:43:e1:61:db:c1&lt;/P&gt;&lt;P&gt;IP Address....................................... 10.4.199.5&lt;/P&gt;&lt;P&gt;IP Netmask....................................... 255.255.255.0&lt;/P&gt;&lt;P&gt;DHCP Option 82................................... Disabled&lt;/P&gt;&lt;P&gt;DHCP Protocol.................................... Disabled&lt;/P&gt;&lt;P&gt;AP Manager....................................... No&lt;/P&gt;&lt;P&gt;Guest Interface.................................. No&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Cisco Controller) &amp;gt;show route summary &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Number of Routes................................. 2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Destination Network&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Netmask&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Gateway&lt;/P&gt;&lt;P&gt;-------------------&amp;nbsp;&amp;nbsp;&amp;nbsp; -------------------&amp;nbsp;&amp;nbsp; -------------------&lt;/P&gt;&lt;P&gt;10.2.100.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.4.199.254&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;10.4.10.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.4.199.254&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Cisco Controller) &amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All routes are added after i discovered that SNMP trafic is routed trough sarvice-port which is without gateway and was necesary to have records in routing table &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Oct 2011 13:57:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757733#M139848</guid>
      <dc:creator>PlamenDanov</dc:creator>
      <dc:date>2011-10-19T13:57:43Z</dc:date>
    </item>
    <item>
      <title>All RADIUS, web login and ssh traffic pass through service-port.</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757734#M139849</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you trying to access the WLC from any of these network 10.2.100.0 or 10.4.10.0..What about the RADIUS, does this come in any of these network&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;NikhiL&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Oct 2011 14:33:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757734#M139849</guid>
      <dc:creator>nikhilcherian</dc:creator>
      <dc:date>2011-10-19T14:33:59Z</dc:date>
    </item>
    <item>
      <title>All RADIUS, web login and ssh traffic pass through service-port.</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757735#M139850</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The RADIUS is in 10.4.10.0 network. i am trying to access it from any VLAN (I mean 10.4.98.5). All Vlans are routable.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Oct 2011 14:57:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757735#M139850</guid>
      <dc:creator>PlamenDanov</dc:creator>
      <dc:date>2011-10-19T14:57:42Z</dc:date>
    </item>
    <item>
      <title>All RADIUS, web login and ssh traffic pass through service-port.</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757736#M139851</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You have added a route for 10.4.10.0 through&amp;nbsp; 10.4.199.254, which means any traffic from 10.4.10.* network will be routed through your&amp;nbsp; 10.4.199.5 interface. Your RADIUS server falls in the network, hence the packet will be trying with that interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;NikhiL&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Oct 2011 05:41:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757736#M139851</guid>
      <dc:creator>nikhilcherian</dc:creator>
      <dc:date>2011-10-20T05:41:55Z</dc:date>
    </item>
    <item>
      <title>Re: All RADIUS, web login and ssh traffic pass through service-p</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757737#M139852</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I added this route because of default gateway mising for service port. With those routes the controller will back an answer&amp;nbsp; for the request, if i am right. The problem comes without routs. Then comes back trough service port but without gateway they were drop. I am looking for option how to use only management port for RADIUS and&amp;nbsp; managment traffic.&amp;nbsp; Thanks&amp;nbsp; Plamen&lt;/P&gt;&lt;P&gt;Posted from my mobile device.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Oct 2011 08:44:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757737#M139852</guid>
      <dc:creator>PlamenDanov</dc:creator>
      <dc:date>2011-10-20T08:44:36Z</dc:date>
    </item>
    <item>
      <title>Re: All RADIUS, web login and ssh traffic pass through service-p</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757738#M139853</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Gateway is not needed for ur service port &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when you add a route to the network A you are saying to use the service port for reaching the network A&lt;/P&gt;&lt;P&gt;Here as you added your route &lt;/P&gt;&lt;P style="border-collapse: collapse; list-style-type: none;"&gt;10.2.100.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.4.199.254&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P style="border-collapse: collapse; list-style-type: none;"&gt;10.4.10.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.4.199.254&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The controller will be using the service port for reaching the network 10.2.100.0 and 10.4.10.0. If your management interface gateway 10.4.98.254 can reach your RADIUS server 10.4.10.0, I would suggest you to delete&amp;nbsp; existing routes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Nikhil&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Oct 2011 13:27:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757738#M139853</guid>
      <dc:creator>nikhilcherian</dc:creator>
      <dc:date>2011-10-20T13:27:13Z</dc:date>
    </item>
    <item>
      <title>Re: All RADIUS, web login and ssh traffic pass through service-p</title>
      <link>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757739#M139854</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;You are right Nikhil. Thanks for your support. Actually after&amp;nbsp; removing all static route&amp;nbsp; the interested traffic getting pass trough the management interface. It is strange why those services are not accessible via management interface when when i am in service network but this question is not for this post. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again for your help! &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Oct 2011 16:47:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/all-radius-web-login-and-ssh-traffic-pass-through-service-port/m-p/1757739#M139854</guid>
      <dc:creator>PlamenDanov</dc:creator>
      <dc:date>2011-10-26T16:47:40Z</dc:date>
    </item>
  </channel>
</rss>

